CVE-2023-6711
published 2023-12-19CVE-2023-6711: Vulnerability exists in SCI IEC 60870-5-104 and HCI IEC 60870-5-104 that affects the RTU500 series product versions listed below. Specially crafted messages…
PriorityP341high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
0.67%
50.1th percentile
Vulnerability exists in SCI IEC 60870-5-104 and HCI IEC 60870-5-104 that affects the RTU500 series product versions listed below. Specially crafted messages sent to the mentioned components are not validated properly and can result in buffer overflow and as final consequence to a reboot of an RTU500 CMU.
Affected
16 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| hitachi_energy | rtu500_series_cmu_firmware | — | — |
| hitachi_energy | rtu500_series_cmu_firmware | 12.0.1 – 12.0.14 | — |
| hitachi_energy | rtu500_series_cmu_firmware | 12.2.1 – 12.2.11 | — |
| hitachi_energy | rtu500_series_cmu_firmware | 12.4.1 – 12.4.11 | — |
| hitachi_energy | rtu500_series_cmu_firmware | 12.6.1 – 12.6.9 | — |
| hitachi_energy | rtu500_series_cmu_firmware | 12.7.1 – 12.7.6 | — |
| hitachi_energy | rtu500_series_cmu_firmware | 13.2.1 – 13.2.6 | — |
| hitachi_energy | rtu500_series_cmu_firmware | 13.4.1 – 13.4.3 | — |
| hitachienergy | rtu500_firmware | — | — |
| hitachienergy | rtu500_firmware | >= 12.0.1.0 < 12.0.15.0 | 12.0.15.0 |
| hitachienergy | rtu500_firmware | >= 12.2.1.0 < 12.2.12.0 | 12.2.12.0 |
| hitachienergy | rtu500_firmware | >= 12.4.1.0 < 12.4.12.0 | 12.4.12.0 |
| hitachienergy | rtu500_firmware | >= 12.6.1.0 < 12.6.10.0 | 12.6.10.0 |
| hitachienergy | rtu500_firmware | >= 12.7.1.0 < 12.7.7.0 | 12.7.7.0 |
| hitachienergy | rtu500_firmware | >= 13.2.1.0 < 13.2.7.0 | 13.2.7.0 |
| hitachienergy | rtu500_firmware | >= 13.4.1.0 < 13.4.4.0 | 13.4.4.0 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
CISA ICS
Hitachi Energy RTU500 series CMU
cisa_ics·2024-12-19·CVSS 5.9
[MEDIUM] Hitachi Energy RTU500 series CMU
ICS Advisory
##
Hitachi Energy RTU500 series CMU
Release DateDecember 19, 2024
Alert CodeICSA-24-354-01
Related topics:
Industrial Control System Vulnerabilities, Industrial Control Systems
View CSAF
## 1. EXECUTIVE SUMMARY
- CVSS v3 5.9
- ATTENTION: Exploitable remotely
- Vendor: Hitachi Energy
- Equipment: RTU500 series CMU
- Vulnerability: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
## 2. RISK EVALUATION
Successful exploitation of this vulnerability could allow an attacker to cause a denial-of-service condition.
## 3. TECHNICAL DETAILS
## 3.1 AFFECTED PRODUCTS
The following Hitachi Energy products are affected:
- RTU500 series CMU Firmware: Versions 12.0.1 through 12.0.14
- RTU500 series CMU Firmware: Versions 12.2.1 t
GHSA
GHSA-x25m-g22v-6hgf: Vulnerability exists in SCI IEC 60870-5-104 and HCI IEC 60870-5-104 that affects the RTU500 series product versions listed below
ghsa_unreviewed·2023-12-19
CVE-2023-6711 [MEDIUM] CWE-120 GHSA-x25m-g22v-6hgf: Vulnerability exists in SCI IEC 60870-5-104 and HCI IEC 60870-5-104 that affects the RTU500 series product versions listed below
Vulnerability exists in SCI IEC 60870-5-104 and HCI IEC 60870-5-104 that affects the RTU500 series product versions listed below. Specially crafted messages sent to the mentioned components are not validated properly and can result in buffer overflow and as final consequence to a reboot of an RTU500 CMU.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2023-12-19
Published